Medium severity6.1NVD Advisory· Published Nov 13, 2023· Updated Jun 17, 2026
CVE-2023-46020
CVE-2023-46020
Description
Cross Site Scripting (XSS) in updateprofile.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary code via the 'rename', 'remail', 'rphone' and 'rcity' parameters.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:code-projects:blood_bank:1.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:code-projects:blood_bank:1.0:*:*:*:*:*:*:*
- (no CPE)range: = 1.0
Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.